About this Privacy Policy
This Privacy Policy applies when you visit https://omexisdigital.com (the “Website”), contact us, request a consultation or proposal, subscribe to marketing, interact with our social media pages, or otherwise communicate or do business with Omexis Digital (“Omexis Digital”, “we”, “us” or “our”).
It covers personal information that identifies you or can reasonably be linked to you. It does not cover information that has been irreversibly anonymised so that no person can reasonably be identified.
This Policy does not replace a client agreement, data processing agreement, campaign-specific notice, cookie notice, or platform privacy notice. If another notice applies to a particular service, it should be read together with this Policy.
Who is responsible for your information?
For information collected through our Website, enquiries, business development, and our own marketing, Omexis Digital acts as the data controller (or equivalent term under applicable law). This means we decide why and how that information is used.
When we process personal information strictly on behalf of a client—for example, managing a client’s advertising audiences, lead forms, customer lists, email campaigns, CRM records, or analytics—we generally act as that client’s data processor or service provider and follow the client’s documented instructions. In those cases, the client remains responsible for its own privacy notices and lawful collection of the information. Requests relating to a client-controlled campaign may need to be directed to that client.
Personal information we collect
3.1 Information you provide directly
- Identity and contact details, such as your name, business name, job title, email address, phone number, country, and social media handle.
- Enquiry and project details, such as your website address, goals, budget, preferred services, campaign requirements, target audience, and the content of messages or consultation requests.
- Client and transaction information, such as proposals, contracts, billing details, payment status, tax information, authorised contacts, and records of services supplied. We do not intentionally collect full payment-card details through the Website.
- Content and account access supplied for services, such as brand assets, photographs, videos, campaign materials, platform permissions, advertising-account information, CRM exports, audience data, or customer leads.
- Marketing preferences, including whether you wish to receive promotional email, phone, WhatsApp, or other communications.
- Recruitment or supplier information if you apply to work with us or offer services to us.
3.2 Information collected automatically
When you use the Website, our hosting, security, and website technologies may automatically record technical and usage information, including:
- IP address, approximate location derived from IP, browser type, device type, operating system, language, referring page, pages viewed, date and time, session activity, and error or diagnostic data.
- Cookie identifiers, consent choices, and similar information stored or accessed on your device, where permitted.
- Security logs used to detect spam, abuse, unauthorised access, malware, and other threats.
3.3 Information from third parties
We may receive information from clients, advertising and social-media platforms, analytics providers, referral partners, publicly available business sources, event organisers, or people who introduce you to us. We only use such information where we have a lawful reason and where the source is permitted to share it.
How and why we use personal information
We may use personal information to:
- Respond to enquiries, arrange consultations, prepare proposals, and communicate about requested services.
- Enter into and perform contracts, onboard clients, deliver campaigns and creative work, manage accounts, provide support, invoice, collect payment, and maintain business records.
- Plan, create, publish, optimise, and report on digital marketing, social media, content, video, design, website, SEO, and paid-advertising services, as agreed with a client.
- Operate, maintain, personalise, secure, troubleshoot, and improve the Website and our services.
- Measure Website and campaign performance, understand audience behaviour, produce aggregated insights, and improve user experience.
- Send service notices and, where lawfully permitted, marketing communications about relevant Omexis Digital services, insights, and offers.
- Manage suppliers, contractors, partnerships, recruitment, and internal administration.
- Prevent fraud, spam, misuse, security incidents, and violations of our terms; establish, exercise, or defend legal claims.
- Comply with laws, regulatory requirements, court orders, audits, tax duties, and lawful requests from authorities.
We do not use personal information for materially incompatible purposes without providing any notice or obtaining any consent required by law.
Legal bases for processing
- Contract: processing is necessary to take requested steps before a contract or to perform a contract with you.
- Legitimate interests: processing supports legitimate business purposes—such as responding to business enquiries, improving services, securing systems, and appropriately marketing to business contacts—after considering your rights and reasonable expectations.
- Consent: you have given clear permission, for example for certain marketing or non-essential cookies. You may withdraw consent at any time, without affecting earlier lawful processing.
- Legal obligation: processing is necessary to comply with a law or binding legal requirement.
- Vital interests or public-interest grounds: used only in the limited situations recognised by applicable law.
Contact forms, consultations, email, and WhatsApp
The Website’s contact and consultation features may ask for your name, email address, phone number, website, and project message. Some consultation forms currently transmit submissions through FormSubmit to our business email inbox. FormSubmit therefore processes the submitted information to deliver your message.
If you contact us through WhatsApp, email, Instagram, or another external service, that provider processes information under its own terms and privacy policy. Depending on the provider and your location, information may be stored or accessed in other countries. Please review the provider’s privacy controls before using the service.
Cookies and similar technologies
Cookies are small files or identifiers placed on or accessed from your device. The Website may use:
- Strictly necessary cookies for core functions, security, network management, form operation, and remembering privacy choices.
- Preference cookies to remember settings and improve convenience.
- Analytics cookies to understand visits, traffic sources, page use, errors, and Website performance.
- Advertising or social-media cookies to measure campaigns, limit repetition, build audiences, or support embedded platform features, but only where these technologies are enabled and legally permitted.
Where required, non-essential cookies and similar technologies will be used only after you provide consent through a cookie banner or settings tool. You can reject or withdraw consent without losing access to basic Website functions. You may also block or delete cookies through your browser, although some features may not work correctly.
The specific technologies in use may change as the Website develops. Our cookie banner or separate Cookie Policy should identify active non-essential cookies, their providers, purposes, and durations. Merely mentioning a category here does not mean every category is active at all times.
Analytics, advertising, and embedded content
We may use analytics and advertising measurement tools to understand Website or campaign performance. Depending on configuration, providers such as Google or Meta may receive device, browser, cookie, IP, page-view, conversion, or interaction information. Where required, we will request consent before activating non-essential analytics or advertising technologies.
The Website currently includes or connects to third-party content and services such as YouTube embeds, Google-hosted fonts, Unsplash-hosted images, WhatsApp links, and social-media links. Loading or opening those features may allow the relevant provider to receive technical information and recognise you through its own cookies or account. Third-party privacy practices are controlled by those providers, not by Omexis Digital.
We do not promise that analytics data is completely anonymous. We treat online identifiers as personal information where applicable law does so.
Marketing communications
We may send marketing where you have consented or where another lawful basis permits it. Messages may be sent by email, phone, WhatsApp, or similar channels and may relate to Omexis Digital services, offers, events, or insights that we reasonably believe are relevant.
You can opt out at any time by using an unsubscribe link, replying “STOP” where appropriate, changing available preferences, or contacting us. We may keep a minimal suppression record so that we can respect your request. Opting out of marketing does not stop necessary service, contractual, security, or billing communications.
We do not sell personal information for money. If any activity is treated as a “sale”, “sharing”, or targeted advertising under an applicable law, we will provide the notices and opt-out mechanisms required by that law.
When we disclose personal information
We may disclose information only as reasonably necessary to:
- Hosting, website, form-delivery, email, cloud-storage, collaboration, analytics, advertising, CRM, payment, accounting, security, and professional-service providers that support our operations.
- Contractors, team members, or group companies that need access to deliver services and are subject to appropriate confidentiality and data-protection duties.
- Clients, advertising platforms, publishers, social networks, search engines, or campaign partners where disclosure is required to provide the agreed service.
- A buyer, investor, adviser, or successor in connection with a proposed or completed merger, restructuring, financing, transfer, or sale, subject to appropriate safeguards.
- Courts, regulators, law-enforcement bodies, tax authorities, or other persons where disclosure is legally required or reasonably necessary to protect rights, safety, and security.
We require service providers to use personal information only for authorised purposes and to apply appropriate safeguards, subject to their role and applicable law.
International data transfers
Omexis Digital serves clients and uses service providers across borders. Your information may therefore be processed in countries other than the country where you live, including countries whose privacy laws differ from yours.
Where applicable law restricts transfers, we use a recognised transfer mechanism or safeguard, such as an adequacy decision, approved contractual clauses, a data-processing agreement, specific consent where permitted, or another lawful exception. You may contact us for information about safeguards relevant to your information, subject to confidentiality and legal restrictions.
Data retention
We keep personal information only for as long as reasonably necessary for the purposes described in this Policy, including to provide services, maintain records, resolve disputes, enforce agreements, comply with tax and legal duties, and protect against fraud or security threats.
Retention periods depend on the type of information and context. For example, unsuccessful enquiries are normally reviewed for deletion or anonymisation when no longer useful for follow-up; client, contract, billing, and tax records may be kept for the legally required period; marketing data is kept until you opt out or it is no longer relevant; security logs are retained for a limited period proportionate to risk; and client-controlled campaign data is retained according to the client agreement and instructions.
When retention is no longer justified, we delete, anonymise, or securely isolate the information, unless continued retention is required or permitted by law. Backup copies may remain for a limited cycle and will be protected from ordinary use.
Data security
We use reasonable technical and organisational measures designed to protect personal information against accidental or unlawful loss, misuse, alteration, unauthorised access, disclosure, or destruction. Measures may include access controls, role-based permissions, secure hosting, encryption where appropriate, backups, malware protection, vendor review, confidentiality obligations, staff awareness, and incident-response procedures.
You are responsible for using secure communication methods, protecting your own accounts and credentials, and avoiding the submission of unnecessary sensitive information.
Your privacy rights
Depending on your location and applicable law, you may have the right to:
- Ask whether we process your personal information and request access to it.
- Correct inaccurate or incomplete information.
- Request deletion, blocking, anonymisation, or restriction of processing.
- Receive certain information in a structured, commonly used, machine-readable format and request transfer where legally applicable.
To exercise a right, contact us using the privacy-contact details below and clearly describe your request. We may ask for information reasonably necessary to verify your identity and authority. We will respond within the period required by applicable law. Rights may be limited by legal exemptions, the rights of others, confidentiality, privilege, record-keeping duties, or our role as a processor for a client.
Automated decision-making
We do not currently use information collected through the Website to make decisions based solely on automated processing that produce legal or similarly significant effects about you. If this changes, we will provide the disclosures and safeguards required by applicable law.
Children’s privacy
The Website and our business services are intended for businesses and adults, not children. We do not knowingly collect personal information directly from children through the Website. If you believe a child has submitted personal information without appropriate permission, please contact us so we can review and delete it where required.
External links and third-party platforms
The Website may link to third-party websites, social networks, messaging services, videos, or applications. We do not control their privacy, security, or content. A link does not mean we endorse the third party’s privacy practices. Review the relevant privacy notice before providing information or enabling cookies on an external service.
Changes to this Privacy Policy
We may update this Policy to reflect changes in our Website, services, technologies, vendors, or legal obligations. The revised version will be posted on this page with a new “Last updated” date. If a change materially affects how we use personal information, we will provide additional notice or request consent where required.
Governing privacy laws
We aim to handle personal information in accordance with privacy and data-protection laws that apply to the relevant processing.
Nothing in this Policy limits rights that cannot lawfully be limited. If a provision conflicts with a mandatory legal requirement, that requirement will apply to the extent of the conflict.
↑ Back to topQuestions or privacy requests?
Contact Omexis Digital and clearly describe your question or request. Please do not send passwords, full payment-card details, or unnecessary sensitive information by email.